CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4626  CVE-2002-0234  Candidate  NetScreen ScreenOS before 2.6.1 does not support a maximum number of concurrent sessions for a system, which allows an attacker on the trusted network to cause a denial of service (resource exhaustion) via a port scan to an external network, which consumes all available connections.  Proposed (20020502)  ACCEPT(2) Cole, Green | NOOP(2) Foat, Wall    View
70162  CVE-2014-2867  Candidate  Unrestricted file upload vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to execute arbitrary code by uploading a ColdFusion page, and then accessing it via unspecified vectors.  Assigned (20140415)  None (candidate not yet proposed)    View
70418  CVE-2014-3123  Candidate  Cross-site scripting (XSS) vulnerability in admin/manage-images.php in the NextCellent Gallery plugin before 1.19.18 for WordPress allows remote authenticated users with the NextGEN Upload images, NextGEN Manage gallery, or NextGEN Manage others gallery permission to inject arbitrary web script or HTML via the "Alt & Title Text" field.  Assigned (20140429)  None (candidate not yet proposed)    View
70674  CVE-2014-3378  Candidate  tacacsd in Cisco IOS XR 5.1 and earlier allows remote attackers to cause a denial of service (process reload) via a malformed TACACS+ packet, aka Bug ID CSCum00468.  Assigned (20140507)  None (candidate not yet proposed)    View
70930  CVE-2014-3634  Candidate  rsyslog before 7.6.6 and 8.x before 8.4.1 and sysklogd 1.5 and earlier allows remote attackers to cause a denial of service (crash), possibly execute arbitrary code, or have other unspecified impact via a crafted priority (PRI) value that triggers an out-of-bounds array access.  Assigned (20140514)  None (candidate not yet proposed)    View

Page 1438 of 20943, showing 5 records out of 104715 total, starting on record 7186, ending on 7190

Actions